2023 CVE Vulnerabilities

31,248 CVEs published in 2023.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2023-26085HIGH7.8A possible out-of-bounds read and write (due to an improper length check of shared memory) was discovered in Arm NN Andr...
CVE-2023-33277HIGH7.5The web interface of Gira Giersiepen Gira KNX/IP-Router 3.1.3683.0 and 3.3.8.0 allows a remote attacker to read sensitiv...
CVE-2023-31222HIGH8.8Deserialization of untrusted data in Microsoft Messaging Queuing Service in Medtronic's Paceart Optima versions 1.11 and...
CVE-2023-34656HIGH8.8An issue was discovered with the JSESSION IDs in Xiamen Si Xin Communication Technology Video management system 3.1 thru...
CVE-2023-33466HIGH8.8Orthanc before 1.12.0 allows authenticated users with access to the Orthanc API to overwrite arbitrary files on the file...
CVE-2023-22886HIGH8.8Improper Input Validation vulnerability in Apache Software Foundation Apache Airflow JDBC Provider. Airflow JDBC Provide...
CVE-2023-3447HIGH7.6The Active Directory Integration / LDAP Integration plugin for WordPress is vulnerable to LDAP Injection in versions up ...
CVE-2023-37237HIGH7.2In Veritas NetBackup Appliance before 4.1.0.1 MR3, insecure permissions may allow an authenticated Admin to bypass shell...
CVE-2023-32610HIGH7.5Mailform Pro CGI 4.3.1.2 and earlier allows a remote unauthenticated attacker to cause a denial-of-service (DoS) conditi...
CVE-2023-34843HIGH7.5Traggo Server 0.3.0 is vulnerable to directory traversal via a crafted GET request.
CVE-2023-34736HIGH7.2Guantang Equipment Management System version 4.12 is vulnerable to Arbitrary File Upload.
CVE-2023-3390HIGH7.8A use-after-free vulnerability was found in the Linux kernel's netfilter subsystem in net/netfilter/nf_tables_api.c. Mi...
CVE-2023-3138HIGH7.5A vulnerability was found in libX11. The security flaw occurs because the functions in src/InitExt.c in libX11 do not ch...
CVE-2023-32223HIGH8.8D-Link DSL-224 firmware version 3.0.10 allows post authentication command execution via an unspecified method.
CVE-2023-21518HIGH7.8Improper access control vulnerability in SearchWidget prior to version 3.3 in China models allows untrusted applications...
CVE-2023-3389HIGH7.8A use-after-free vulnerability in the Linux Kernel io_uring subsystem can be exploited to achieve local privilege escala...
CVE-2023-3090HIGH7.8A heap out-of-bounds write vulnerability in the Linux Kernel ipvlan network driver can be exploited to achieve local pri...
CVE-2023-33570HIGH8.8Bagisto v1.5.1 is vulnerable to Server-Side Template Injection (SSTI).
CVE-2023-3450HIGH7.2A vulnerability was found in Ruijie RG-BCR860 2.5.13 and classified as critical. This issue affects some unknown process...
CVE-2023-3449HIGH7.2A vulnerability has been found in IBOS OA 4.5.5 and classified as critical. This vulnerability affects the function acti...
CVE-2023-21226HIGH7.5In SAEMM_RetrieveTaiList of SAEMM_ContextManagement.c, there is a possible out of bounds read due to an incorrect bounds...
CVE-2023-21225HIGH7.8there is a possible way to bypass the protected confirmation screen due to Failure to lock display power. This could lea...
CVE-2023-21224HIGH7.5In ss_ProcessReturnResultComponent of ss_MmConManagement.c, there is a possible out of bounds read due to a heap buffer ...
CVE-2023-21223HIGH7.5In LPP_ConvertGNSS_DataBitAssistance of LPP_CommonUtil.c, there is a possible out of bounds read due to a missing bounds...
CVE-2023-21220HIGH7.5there is a possible use of unencrypted transport over cellular networks due to an insecure default value. This could lea...

Check if your code is affected by 2023 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now